给dUP2做手术

0105D6EA   .  6A 03         PUSH 0x3                                 ; /IsShown = 0x3
0105D6EC   .  6A 00         PUSH 0x0                                 ; |DefDir = NULL
0105D6EE   .  6A 00         PUSH 0x0                                 ; |Parameters = NULL
0105D6F0   .  68 AC040B01   PUSH dup2_exe.010B04AC                   ; |http://t.cn/R5WwtIS
0105D6F5   .  68 A4040B01   PUSH dup2_exe.010B04A4                   ; |open
0105D6FA   .  6A 00         PUSH 0x0                                 ; |hWnd = NULL
0105D6FC   .  E8 B7CE0000   CALL <JMP.&shell32.ShellExecuteA>        ; \ShellExecuteA

00503E14   .  6A 01         PUSH 0x1                                 ; /IsShown = 0x1
00503E16   .  6A 00         PUSH 0x0                                 ; |DefDir = NULL
00503E18   .  6A 00         PUSH 0x0                                 ; |Parameters = NULL
00503E1A   .  68 2C3E5000   PUSH AT4REPat.00503E2C                   ; |http://www.at4re.com/f/showthread.php?11345-AT4RE-Patcher&goto=newpost
00503E1F   .  68 743E5000   PUSH AT4REPat.00503E74                   ; |open
00503E24   .  6A 00         PUSH 0x0                                 ; |hWnd = NULL
00503E26   .  E8 5181F3FF   CALL <JMP.&shell32.ShellExecuteA>        ; \ShellExecuteA
00503E2B   .  C3            RETN
00503E2C   .  68 74 74 70 3>ASCII "http://www.at4re"
00503E3C   .  2E 63 6F 6D 2>ASCII ".com/f/showthrea"
00503E4C   .  64 2E 70 68 7>ASCII "d.php?11345-AT4R"
00503E5C   .  45 2D 50 61 7>ASCII "E-Patcher&goto=n"
00503E6C   .  65 77 70 6F 7>ASCII "ewpost",0
00503E73      00            DB 00
00503E74   .  6F 70 65 6E 0>ASCII "open",0

004F0384=AT4REPat.004F0384 (ASCII "Successfully Patched :)")
直接call上nop没作用

发现两处Successfully Patched :)字串
004EFD28   .  53 75 63 63 6>ASCII "Successfully Pat"
004EFD38   .  63 68 65 64 2>ASCII "ched :)",0

004F0020   .  53 75 63 63 6>ASCII "Successfully Pat"
004F0030   .  63 68 65 64 2>ASCII "ched :)",0   结果发现,实际是1处,修改后仍然不起作用。

===================
00419CDD  |.  E8 D68CFEFF   CALL IDM_6_25.004029B8

0041BE3B

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值